Review recommended
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
warnThis skill directs the agent to read all source files within a project, which may result in the exposure of sensitive data like environment variables, credentials, or private configuration files. It also uses imperative language to override standard agent behavior and creates an attack surface for indirect prompt injection by processing all project contents.
Socket
passNo alerts
Snyk
passRisk: LOW · No issues